apiVersion: v1
kind: Pod
metadata:
name: restrictedvolumes2
spec:
containers:
- image: registry.k8s.io/pause
name: container1
securityContext:
allowPrivilegeEscalation: false
initContainers:
- image: registry.k8s.io/pause
name: initcontainer1
securityContext:
allowPrivilegeEscalation: false
securityContext:
runAsNonRoot: true
volumes:
- gitRepo:
repository: github.com/kubernetes/kubernetes
name: volume1